Thanks to visit codestin.com
Credit goes to github.com

Skip to content

[Snyk] Upgrade @vercel/ncc from 0.23.0 to 0.34.0 #7

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

MarcelRaschke
Copy link
Owner

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade @vercel/ncc from 0.23.0 to 0.34.0.

merge advice
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 28 versions ahead of your current version.
  • The recommended version was released 3 months ago, on 2022-05-25.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Improper Input Validation
SNYK-JS-ACTIONSCORE-2980270
536/1000
Why? Recently disclosed, Has a fix available, CVSS 5
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: @vercel/ncc
  • 0.34.0 - 2022-05-25

    Changes

    Add support for TS 4.7

    • Chore(deps-dev): bump ts-loader from 8.3.0 to 9.3.0: #921
    • Chore(deps-dev): bump express from 4.17.1 to 4.18.1: #917
    • Chore: add memory-fs to the devDependencies: #927

    Credits

    Huge thanks to @ stscoundrel and @ shogo82148 for helping!

  • 0.33.4 - 2022-04-11

    Changes

    • Fix: Add missing variable declaration: #773
    • Chore: add windows to CI: #896
    • Chore: bump webpack-asset-relocator-loader to 1.7.2: #912
    • Chore(deps-dev): bump vm2 from 3.9.4 to 3.9.6: #872
    • Chore(deps): bump url-parse from 1.5.3 to 1.5.7: #875
    • Chore(deps): bump url-parse from 1.5.7 to 1.5.10: #879
    • Chore(deps-dev): bump stripe from 8.167.0 to 8.205.0: #882
    • Chore(deps-dev): bump typescript from 4.4.2 to 4.6.2: #881
    • Chore(deps-dev): bump twilio from 3.66.1 to 3.75.0: #884
    • Chore(deps): bump actions/setup-node from 2 to 3: #880
    • Chore(deps-dev): bump graphql from 15.5.1 to 15.8.0: #885
    • Chore: replace deprecated String.prototype.substr(): #894
    • Chore(deps): bump actions/checkout from 2 to 3: #902
    • Chore(deps-dev): bump @ azure/cosmos from 3.12.3 to 3.15.1: #905
    • Chore(deps-dev): bump stripe from 8.205.0 to 8.214.0: #906
    • Chore(deps-dev): bump @ google-cloud/bigquery from 5.7.0 to 5.12.0: #903
    • Chore(deps-dev): bump tsconfig-paths from 3.10.1 to 3.14.1: #904

    Credits

    Huge thanks to @ CommanderRoot for helping!

  • 0.33.3 - 2022-02-13

    Patches

    • Fix: bump license-webpack-plugin: #871
    • Chore(deps): bump follow-redirects from 1.14.7 to 1.14.8: #870
  • 0.33.2 - 2022-02-11

    Patches

    • Fix: use sha256 instead of deprecated md5 for hash algorithm: #868
    • Fix: typo in build script: #835
    • Chore(test) Add Node.js 16 to CI: #801
    • Chore(deps): bump nodemailer from 6.5.0 to 6.7.2: #833
    • Chore(deps-dev): bump terser from 5.7.1 to 5.10.0: #840
    • Chore(deps-dev): bump passport from 0.4.1 to 0.5.2: #839
    • Chore(deps-dev): bump sequelize from 6.6.5 to 6.12.4: #843
    • Chore(deps-dev): bump analytics-node from 5.0.0 to 6.0.0: #838
    • Chore(deps): bump follow-redirects from 1.14.5 to 1.14.7: #846
    • Chore(deps): bump cached-path-relative from 1.0.2 to 1.1.0: #854
    • Chore(deps-dev): bump license-webpack-plugin from 2.3.20 to 4.0.1: #859
    • Chore(deps): bump simple-get from 3.1.0 to 3.1.1: #864
    • Chore(deps-dev): bump aws-sdk from 2.1024.0 to 2.1068.0: #867

    Credits

    Huge thanks to @ shakefu for helping!

  • 0.33.1 - 2021-12-18

    Patches

    • Allow configuring mainFields for nccing browser modules: #832
  • 0.33.0 - 2021-12-02

    Minor Changes

    • Chore(deps-dev): bump @ vercel/webpack-asset-relocator-loader: #826
    • Fix: Fix source maps: #818
    • Feat: Allow using matches from externals for regex matching: #825

    Patches

    • Chore(deps-dev): bump koa from 2.13.1 to 2.13.4: #822
    • Chore(deps-dev): bump mariadb from 2.5.4 to 2.5.5: #823

    Credits

    Huge thanks to @ fenix20113 for helping!

  • 0.32.0 - 2021-11-16

    Changes

    • Feat: bump to [email protected]: #809
    • Docs: add debug command description: #800
    • Chore(deps): bump object-path from 0.11.7 to 0.11.8: #778
    • Chore(deps): bump tmpl from 1.0.4 to 1.0.5: #779
    • Chore(deps-dev): bump vm2 from 3.9.3 to 3.9.4: #795
    • Chore(deps-dev): bump axios from 0.21.1 to 0.21.2: #810
    • Chore(deps-dev): bump aws-sdk from 2.958.0 to 2.1024.0: #812
    • Chore(deps-dev): bump webpack from 5.61.0 to 5.62.1: #813
    • Chore(deps): bump passport-oauth2 from 1.5.0 to 1.6.1: #811
    • Chore(deps): bump url-parse from 1.5.1 to 1.5.3: #815

    Credits

    Huge thanks to @ fireairforce and @ jesec for helping!

  • 0.31.1 - 2021-09-13

    Patches

    • Fix tsconfig.json detection: #770
  • 0.31.0 - 2021-09-09

    Changes

    • Fix compilerOptions from tsconfig.json: #766
    • Bump typescript to 4.4.2: #767
    • Chore(deps-dev): bump graceful-fs from 4.2.6 to 4.2.8: #761
    • Chore(deps): bump tar from 4.4.15 to 4.4.19: #763
    • Chore(deps): bump object-path from 0.11.5 to 0.11.7: #764
  • 0.30.0 - 2021-08-27
    Read more
  • 0.29.2 - 2021-08-19
  • 0.29.1 - 2021-08-13
  • 0.29.0 - 2021-07-16
  • 0.28.6 - 2021-05-25
  • 0.28.5 - 2021-05-03
  • 0.28.4 - 2021-04-28
  • 0.28.3 - 2021-04-12
  • 0.28.2 - 2021-04-08
  • 0.28.1 - 2021-04-07
  • 0.28.0 - 2021-04-05
  • 0.27.0 - 2021-01-12
  • 0.26.2 - 2021-01-06
  • 0.26.1 - 2020-12-18
  • 0.26.0 - 2020-12-17
  • 0.25.1 - 2020-11-06
  • 0.25.0 - 2020-11-05
  • 0.24.1 - 2020-09-14
  • 0.24.0 - 2020-08-26
  • 0.23.0 - 2020-08-12
from @vercel/ncc GitHub release notes
Commit messages
Package name: @vercel/ncc
  • 854b9ae 0.34.0
  • 5901cc2 chore(deps-dev): bump ts-loader from 8.3.0 to 9.3.0 (#921)
  • 26b6460 chore: add `memory-fs` to the devDependencies (#927)
  • c9238cc chore(deps-dev): bump express from 4.17.1 to 4.18.1 (#917)
  • 27c2556 Revert "CI: Add Node 18" (#924)
  • db80737 chore: Add Node 18 to CI (#915)
  • 016838b 0.33.4
  • 7615dfb chore: bump webpack-asset-relocator-loader to 1.7.2 (#912)
  • a9c07e0 chore(deps-dev): bump tsconfig-paths from 3.10.1 to 3.14.1 (#904)
  • 221dc61 chore(deps-dev): bump @ google-cloud/bigquery from 5.7.0 to 5.12.0 (#903)
  • 58f2975 chore(deps-dev): bump stripe from 8.205.0 to 8.214.0 (#906)
  • 2a0af1e chore(deps-dev): bump @ azure/cosmos from 3.12.3 to 3.15.1 (#905)
  • 6c7b56b chore(deps): bump actions/checkout from 2 to 3 (#902)
  • 4c5fe12 chore: add windows to CI (#896)
  • 326cdf3 chore: replace deprecated String.prototype.substr() (#894)
  • 06aa205 fix: Add missing variable declaration (#773)
  • 302017b chore(deps-dev): bump graphql from 15.5.1 to 15.8.0 (#885)
  • b07ea7c chore(deps): bump actions/setup-node from 2 to 3 (#880)
  • 9d0071d chore(deps-dev): bump twilio from 3.66.1 to 3.75.0 (#884)
  • 9eef65e chore(deps-dev): bump typescript from 4.4.2 to 4.6.2 (#881)
  • d71478f chore(deps-dev): bump stripe from 8.167.0 to 8.205.0 (#882)
  • 8a135be chore(deps): bump url-parse from 1.5.7 to 1.5.10 (#879)
  • 0c1202b chore(deps): bump url-parse from 1.5.3 to 1.5.7 (#875)
  • c070a14 chore(deps-dev): bump vm2 from 3.9.4 to 3.9.6 (#872)

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants